PingFederate and Certificate Management
A Microsoft Azure service outage reminds us that there are underlying technologies that support our infrastructure and that they may have an expiration date. It's important to monitor your server and perform periodic maintenance for best performance.
PingFederate also relies on certificates for security: HTTPS for Identity Provider (IdP) and Service Provider (SP) connections and perhaps at your directory services (LDAPS). Certificates are also used to sign assertions and encrypt data sent in assertions. It is important to update these certificates to ensure that your Federation-enabled Single Sign-on (SSO) continues to function.
PingFederate provides an important notification option to send out email notifications before certificates are about to expire. Instructions on how to enable this feature are available in the PingFederate Administrator's Manual section on Configuring Runtime Notifications.
The following articles detail some common problems and their solutions relating to certificates: